view .travis.yml @ 1659:d32bcb5c557d

Add Ed25519 support (#91) * Add support for Ed25519 as a public key type Ed25519 is a elliptic curve signature scheme that offers better security than ECDSA and DSA and good performance. It may be used for both user and host keys. OpenSSH key import and fuzzer are not supported yet. Initially inspired by Peter Szabo. * Add curve25519 and ed25519 fuzzers * Add import and export of Ed25519 keys
author Vladislav Grishenko <>
date Wed, 11 Mar 2020 21:09:45 +0500
parents d17a6bab2179
children 5e763ad6e2e0
line wrap: on
line source
language: c

  depth: 3

    # subsequent matrix options use these first settings
    - os: linux
      compiler: gcc
      env: WEXTRAFLAGS=-Werror
      sudo: false
    - env: MULTI=1 WEXTRAFLAGS=-Werror
    # libtom has some warnings, so no WEXTRAFLAGS
    - env: CONFIGURE_FLAGS=--enable-bundled-libtom WEXTRAFLAGS=""
    - env: NOWRITEV=1 WEXTRAFLAGS=-Werror
    # libtomcrypt 1.18.1 fixes clang problems, distro doesn't have that yet
    - os: linux
      compiler: clang
      env: CONFIGURE_FLAGS=--enable-bundled-libtom WEXTRAFLAGS=""
    - os: osx
      compiler: clang
      env: WEXTRAFLAGS=""

    # Note: the fuzzing malloc wrapper doesn't replace free() in system libtomcrypt, so need bundled.
    - env: DO_FUZZ=1 CONFIGURE_FLAGS="--enable-fuzz --disable-harden --enable-bundled-libtom" WEXTRAFLAGS="" LDFLAGS=-fsanitize=address EXTRACFLAGS=-fsanitize=address CXX=clang++
      compiler: clang
      # sanitizers need ptrace which is privileged
      sudo: required

# container-based builds
    # packages list:
    - zlib1g-dev
    - libtomcrypt-dev
    - libtommath-dev
    - mercurial

  - if [ "$CC" = "clang" ]; then WEXTRAFLAGS="$WEXTRAFLAGS -Wno-error=incompatible-library-redeclaration" ; fi  # workaround

  - autoconf 
  - autoheader 
  - ./configure $CONFIGURE_FLAGS CFLAGS="-O2 -Wall -Wno-pointer-sign $WEXTRAFLAGS $EXTRACFLAGS" --prefix="$HOME/inst" || (cat config.log; exit 1)
  - if [ "$NOWRITEV" = "1" ]; then sed -i -e s/HAVE_WRITEV/DONT_HAVE_WRITEV/ config.h ; fi
  - make -j3 
  - test -z $DO_FUZZ || make fuzzstandalone
  # avoid concurrent install, osx/freebsd is racey (
  - make install 

  - ~/inst/bin/dropbearkey -t rsa -f testrsa
  - ~/inst/bin/dropbearkey -t dss -f testdss
  - ~/inst/bin/dropbearkey -t ecdsa -f testec256 -s 256
  - ~/inst/bin/dropbearkey -t ecdsa -f testec384 -s 384
  - ~/inst/bin/dropbearkey -t ecdsa -f testec521 -s 521
  - ~/inst/bin/dropbearkey -t ed25519 -f tested25519
  - test -z $DO_FUZZ || ./

    - master
    - coverity